Загрузка видео...

Не удалось загрузить видео

На главную

Introducing CodeCapy: the only PR bot that actually tests your code - an open-source GitHub app that generates end-to-end UI tests based on code changes and executes tests autonomously in isolated Scrapybara Ubuntu desktops. Try CodeCapy for your repos with the link below!

18,254 просмотров • 1 год назад •via X (Twitter)

Комментарии: 9

Фото профиля Scrapybara
Scrapybara1 год назад

Check out the repo here, stars and contributions welcome!

Фото профиля Semaphore
Semaphore1 год назад

Jenkins is a classic. Semaphore Open Source is the next step. Built for speed. Designed for simplicity. Ready to see what’s next for CI/CD? Discover more:

Фото профиля justin
justin1 год назад

it's finally alive 🥹

Фото профиля jonathan liu
jonathan liu1 год назад

all the other QA automation tools that use AI better watch out 😤

Фото профиля daniel
daniel1 год назад

Huge

Фото профиля vly.ai
vly.ai1 год назад

Huge stuff

Фото профиля Crispy
Crispy1 год назад

Sick

Фото профиля Ujjwal 𝕏
Ujjwal 𝕏1 год назад

@ycombinator Interesting

Фото профиля .
.1 год назад

🔥

Похожие видео

What they don't tell you about vibe coding: • Moltbook exposed 1.5M auth tokens. The owner hadn't written a single line of code. • Tea App leaked 72,000 government IDs. The database was just open, no sophisticated hack needed. • A researcher took control of a journalist's computer through her own vibe-coded game, without a single click. The code ran fine in all three cases, tests passed, reviews looked clean, and nothing raised a flag. That's the problem nobody is talking about. Teams are shipping faster than ever. AI writes the code. CI catches build failures. Tests catch regressions. Observability catches outages. But nobody is asking the one question that actually matters: What can an attacker do with this, right now? Because the bottleneck is no longer writing code. It's understanding what that code actually exposes once it's live. PR reviews miss auth edge cases. Unit tests don't probe broken access control. Staging environments don't simulate adversarial behavior. And business logic flaws look completely fine until someone decides to break them on purpose. Strix is an open-source tool that fills this gap. It reviews your running app the way an attacker would: - Crawls the app and maps every exposed route and flow - Probes abuse paths dynamically, not just at build time - Returns findings with proof-of-concepts and suggested fixes Strix was benchmarked against 200 real companies and open-source repos, where it found 600+ verified vulnerabilities including assigned CVEs. It's designed to fit into how modern teams already work. Run it before a release, after major changes, or continuously as the app evolves. If your team is shipping AI-generated code and you don't currently have a way to answer "what does this actually expose", it's worth looking at. GitHub link in the next tweet.

Akshay 🚀

52,284 просмотров • 2 месяцев назад